CVE-2015-0524 Information

Description

SQL injection vulnerability in the Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) 3.02 and 3.03 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

Reference

http://packetstormsecurity.com/files/130768/EMC-Secure-Remote-Services-GHOST-SQL-Injection-Command-Injection.html http://seclists.org/bugtraq/2015/Mar/40 http://seclists.org/fulldisclosure/2015/Mar/119 http://www.securityfocus.com/archive/1/534930/100/0/threaded https://www.securify.nl/advisory/SFY20141113/emc_secure_remote_services_virtual_edition_provisioning_component_is_affected_by_sql_injection.html

Share on: